Skip to content

Conversation

@mykolasolodukha
Copy link
Collaborator

No description provided.

@mykolasolodukha mykolasolodukha self-assigned this Jul 14, 2025
@mykolasolodukha mykolasolodukha removed the request for review from samonaisi July 14, 2025 08:18
Allow starlette >=0.49.1 which patches:
- High: DoS via Range header in FileResponse
- Medium: DoS via multipart form parsing
Adds CORSMiddleware with dynamic origin validation:
- Debug: allows http/https on any subdomain/port of `DOMAIN`
- Production: restricts to https on main domain subdomains
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants